{"items":[{"id":"e19289d8a0d1","title":"Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug","link":"https://thehackernews.com/2026/08/veeam-terraform-mcp-django-patch.html","summary":"HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django. The three most serious: An unauthenticated flaw in Veeam's console that hands over a managed agent's…","publishedAt":"2026-08-05T14:27:30.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":81,"severity":"critical","tags":["Unauthenticated","Critical","Vulnerability","Patch"],"cves":[]},{"id":"9d6f898762d6","title":"IBM's agentic AI platform is under active attack - patch now","link":"https://www.theregister.com/security/2026/08/05/ibms-agentic-ai-platform-is-under-active-attack-patch-now/5283535","summary":"A critical Langflow flaw allowing RCE on default deployments is being exploited, says the CISA","publishedAt":"2026-08-05T16:44:39.000Z","source":{"id":"theregister","name":"The Register · Security","site":"https://www.theregister.com/security","category":"News"},"priority":77,"severity":"critical","tags":["RCE","Critical","Urgent","Vulnerability","Patch"],"cves":[]},{"id":"6d808752407d","title":"Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup","link":"https://thehackernews.com/2026/08/critical-gitea-flaw-let-unauthenticated.html","summary":"An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public repository and crafted Org-mode markup are enough. The flaw…","publishedAt":"2026-08-05T11:04:23.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":72,"severity":"critical","tags":["Unauthenticated","Critical","Vulnerability"],"cves":[]},{"id":"cadf3defd1a8","title":"CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited","link":"https://thehackernews.com/2026/08/cisa-flags-langflow-rce-tomcat-and-n.html","summary":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows -…","publishedAt":"2026-08-05T07:40:39.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":72,"severity":"critical","tags":["Exploited in the Wild","RCE","Vulnerability"],"cves":[]},{"id":"a8da81cc43b3","title":"OVSwrap: 13-Year-Old Linux Kernel Flaw Lets Local Users Become Root","link":"https://securityaffairs.com/196657/hacking/ovswrap-13-year-old-linux-kernel-flaw-lets-local-users-become-root.html","summary":"OVSwrap is a 13-year-old Linux kernel flaw that lets local users gain root privileges on most distributions using Open vSwitch. Security researcher Asim Manizada disclosed OVSwrap (CVE-2026-64531, CVSS score of 7.8), a local privilege escalation vulnerability…","publishedAt":"2026-08-05T14:24:08.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":71,"severity":"critical","tags":["Priv-Esc","Vulnerability"],"cves":["CVE-2026-64531"]},{"id":"d72619e3dc9d","title":"CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws","link":"https://www.bleepingcomputer.com/news/security/cisa-warns-of-hackers-exploiting-langflow-n-central-apache-tomcat-flaws/","summary":"The U.S. Cybersecurity and Infrastructure Security Agency is giving federal agencies three days to mitigate vulnerabilities in IBM Langflow, N-central, and Apache Tomcat, all actively exploited. [...]","publishedAt":"2026-08-05T15:51:33.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":64,"severity":"critical","tags":["Exploited in the Wild","Vulnerability"],"cves":[]},{"id":"0103b4679f37","title":"Paperclip AI Flaws Let Unauthenticated Attackers Run Commands","link":"https://www.infosecurity-magazine.com/news/paperclip-ai-vulnerabilities-rce/","summary":"3 Paperclip flaws exposed data & allowed unauthenticated command execution in two deployment modes","publishedAt":"2026-08-05T14:30:00.000Z","source":{"id":"infosecurity","name":"Infosecurity Magazine","site":"https://www.infosecurity-magazine.com","category":"News"},"priority":62,"severity":"high","tags":["Unauthenticated","Breach"],"cves":[]},{"id":"3f03d1027f52","title":"Tuskira expands exposure management with Agentic Control Plane","link":"https://www.helpnetsecurity.com/2026/08/05/tuskira-expands-exposure-management-with-agentic-control-plane/","summary":"Tuskira has launched its Agentic Control Plane for Exposure Management, a new capability within the Tuskira platform that governs AI-discovered vulnerabilities from scan to verified closure. The capability extends Tuskira’s existing zero-day and…","publishedAt":"2026-08-05T12:54:19.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":56,"severity":"high","tags":["Zero-Day","Vulnerability"],"cves":[]},{"id":"361feaf14309","title":"QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer","link":"https://thehackernews.com/2026/08/quickfox-supply-chain-attack-delivers.html","summary":"Cybersecurity researchers have disclosed what has been described as a \"long-standing supply chain attack\" on QuickFox, a virtual private network (VPN) and network acceleration tool designed for overseas Chinese users. According to Fortinet FortiGuard Labs,…","publishedAt":"2026-08-05T05:47:19.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":56,"severity":"high","tags":["Supply Chain","Backdoor"],"cves":[]},{"id":"4d2ab3e366d0","title":"Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack","link":"https://www.securityweek.com/over-400-npm-packages-infected-in-chaindrop-supply-chain-attack/","summary":"The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials. The post Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack appeared first on SecurityWeek.","publishedAt":"2026-08-05T08:56:58.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":55,"severity":"high","tags":["Supply Chain","Malware"],"cves":[]},{"id":"cdc527a84c98","title":"Dutch retailer De Bijenkorf warns customer data may be exposed after cyber incident","link":"https://therecord.media/de-bijenkorf-luxury-retailer-third-party-cyber-incident","summary":"Amsterdam-based luxury goods chain De Bijenkorf is the latest retailer to announce a cyber incident involving a third-party logistics provider.","publishedAt":"2026-08-05T15:36:00.000Z","source":{"id":"therecord","name":"The Record","site":"https://therecord.media","category":"Geopolitical"},"priority":54,"severity":"high","tags":["Breach"],"cves":[]},{"id":"3c3ece2499ac","title":"Leaked n8n API Tokens Exposed Live Instances to Credential Theft","link":"https://thehackernews.com/2026/08/leaked-n8n-api-tokens-exposed-live.html","summary":"GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We…","publishedAt":"2026-08-05T10:35:29.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":53,"severity":"high","tags":["Breach","Vulnerability"],"cves":[]},{"id":"f83f5edb8287","title":"CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities","link":"https://www.securityweek.com/cisa-warns-of-exploited-langflow-n-central-and-tomcat-vulnerabilities/","summary":"The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass. The post CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities appeared first on SecurityWeek.","publishedAt":"2026-08-05T09:44:50.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":53,"severity":"high","tags":["RCE","Vulnerability"],"cves":[]},{"id":"8a7f837021eb","title":"Brown Health Medical Group-MA Data Breach Exposes Information of 311,000 Individuals","link":"https://securityaffairs.com/196681/uncategorized/brown-health-medical-group-ma-data-breach-exposes-information-of-311000-individuals.html","summary":"Brown Health Medical Group-MA breach exposed personal, medical, and financial data of over 311,000 individuals after hackers accessed its servers. Brown Health Medical Group-MA data breach exposed personal, medical, and financial data of over 311,000…","publishedAt":"2026-08-05T16:27:17.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":52,"severity":"high","tags":["Breach"],"cves":[]},{"id":"bbf146e29fd8","title":"TP-Link patches Omada ZTP flaws allowing hackers to breach networks","link":"https://www.bleepingcomputer.com/news/security/tp-link-patches-omada-ztp-flaws-allowing-hackers-to-breach-networks/","summary":"TP-Link has patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices that could be chained with previously disclosed flaws to achieve remote code execution (RCE). [...]","publishedAt":"2026-08-04T22:18:20.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":51,"severity":"elevated","tags":["RCE","Breach","Vulnerability"],"cves":[]},{"id":"eee6e3b5533e","title":"Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself","link":"https://thehackernews.com/2026/08/claude-mythos-5-tried-to-backdoor-real.html","summary":"An agent running Anthropic's Claude Mythos 5 spent 34 hours trying to get a malware dropper merged into a real open-source project during a cyber evaluation by the UK's AI Security Institute. When a bystander publicly warned that the code was malicious, the…","publishedAt":"2026-08-05T07:53:50.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":47,"severity":"elevated","tags":["Backdoor","Malware"],"cves":[]},{"id":"88bb633b131c","title":"Google Blogger locks hundreds of blogs in malware false positive","link":"https://www.bleepingcomputer.com/news/google/google-blogger-locks-hundreds-of-blogs-in-malware-false-positive/","summary":"Google has locked hundreds of Blogger websites after a false positive claimed they violated its \"Malware and Similar Malicious Content\" policy, with some sites deleted from the platform. [...]","publishedAt":"2026-08-05T14:59:29.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":46,"severity":"elevated","tags":["Malware"],"cves":[]},{"id":"cf119a8c00ca","title":"Fake Bank of America Phishing Scam Installs Remote Access Malware","link":"https://www.infosecurity-magazine.com/news/fake-bank-of-america-phishing-scam/","summary":"Cybercriminals are using a fake Bank of America phishing campaign to trick users into downloading a malicious script that installs ScreenConnect, enabling remote access and persistence on compromised systems","publishedAt":"2026-08-05T08:00:00.000Z","source":{"id":"infosecurity","name":"Infosecurity Magazine","site":"https://www.infosecurity-magazine.com","category":"News"},"priority":46,"severity":"elevated","tags":["Malware","Phishing"],"cves":[]},{"id":"ce64270c2259","title":"U.S. CISA adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog","link":"https://securityaffairs.com/196667/hacking/u-s-cisa-adds-langflow-apache-tomcat-and-n-able-n-central-flaws-to-its-known-exploited-vulnerabilities-catalog.html","summary":"U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following…","publishedAt":"2026-08-05T15:25:18.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":45,"severity":"elevated","tags":["Vulnerability"],"cves":[]},{"id":"679dadb59fc2","title":"How AI-powered phishing killed blocklists for good","link":"https://www.bleepingcomputer.com/news/security/how-ai-powered-phishing-killed-blocklists-for-good/","summary":"AI is helping attackers create disposable phishing infrastructure and rapidly evolving toolkits that blocklists cannot track fast enough. Push Security explains why browser-level, technique-based detection offers a more durable defense than relying on…","publishedAt":"2026-08-05T14:01:11.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":44,"severity":"elevated","tags":["Phishing"],"cves":[]},{"id":"dd6669599fbf","title":"From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide","link":"https://www.microsoft.com/en-us/security/blog/2026/08/05/macos-clickfix-campaign-learned-hide/","summary":"A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicious infrastructure harder to detect while giving defenders new hunting opportunities. The post From…","publishedAt":"2026-08-05T15:48:39.000Z","source":{"id":"msrc","name":"Microsoft Security Blog","site":"https://www.microsoft.com/en-us/security/blog","category":"Vendor Research"},"priority":43,"severity":"elevated","tags":["Malware"],"cves":[]},{"id":"cfbb9090e618","title":"New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts","link":"https://www.securityweek.com/new-attack-methods-enable-malware-to-hijack-passkey-protected-accounts/","summary":"Palo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation. The post New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts appeared first on SecurityWeek.","publishedAt":"2026-08-05T12:48:49.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":43,"severity":"elevated","tags":["Malware"],"cves":[]},{"id":"02fcf2eb21d9","title":"AI agent deception moves from theory to reality in UK cyber tests","link":"https://www.helpnetsecurity.com/2026/08/05/ai-agent-deception-in-cyber-tests/","summary":"“During a routine cyber evaluation, AI agents took sustained, unsanctioned action directed at real people and organisations,” UK’s AI Security Institute (AISI) disclosed on Tuesday. The agents’ actions included an attempted supply-chain attack that saw them…","publishedAt":"2026-08-05T12:05:22.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":43,"severity":"elevated","tags":["Supply Chain"],"cves":[]},{"id":"993869628912","title":"Massive supply-chain attack compromises 440 packages under four hours","link":"https://cyberscoop.com/supply-chain-attack-malware-mini-shai-hulud-teampcp/","summary":"Researchers from multiple security firms observed a variant of Mini Shai-Hulud, self-replicating malware linked to TeamPCP, in all the affected packages. The post Massive supply-chain attack compromises 440 packages under four hours appeared first on…","publishedAt":"2026-08-04T22:07:35.000Z","source":{"id":"cyberscoop","name":"CyberScoop","site":"https://cyberscoop.com","category":"Geopolitical"},"priority":43,"severity":"elevated","tags":["Supply Chain","Malware"],"cves":[]},{"id":"3796d957d755","title":"ArmorCode enhances attack path analysis with new AI agents and Context Risk Graph","link":"https://www.helpnetsecurity.com/2026/08/05/armorcode-anya-ai-agents/","summary":"ArmorCode has announced a major expansion of its Agentic Control Plane. Four new Anya AI agents help security teams analyze cloud risks, assess vulnerability exploitability, identify mitigation strategies, and coordinate patch orchestration. It also unveiled…","publishedAt":"2026-08-05T13:07:04.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":42,"severity":"elevated","tags":["Vulnerability","Patch"],"cves":[]},{"id":"dc35ef638552","title":"ChainDrop supply chain compromise: Anatomy of a self-propagating worm","link":"https://www.microsoft.com/en-us/security/blog/2026/08/04/chaindrop-supply-chain-compromise-anatomy-self-propagating-worm/","summary":"A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates. This analysis details the attack chain, affected environments, and practical guidance for detection,…","publishedAt":"2026-08-04T23:46:41.000Z","source":{"id":"msrc","name":"Microsoft Security Blog","site":"https://www.microsoft.com/en-us/security/blog","category":"Vendor Research"},"priority":42,"severity":"elevated","tags":["Supply Chain"],"cves":[]},{"id":"8357959ea805","title":"Vulnerabilities in Car Anti-Theft Device","link":"https://www.schneier.com/blog/archives/2026/08/vulnerabilities-in-car-anti-theft-device.html","summary":"This is disturbing: …a team of security researchers at UC San Diego, who found that a model of aftermarket car alarm known as the KARR Security System, installed in more than 2 million vehicles across the US by their estimate, can let any hacker within…","publishedAt":"2026-08-05T09:42:43.000Z","source":{"id":"schneier","name":"Schneier on Security","site":"https://www.schneier.com","category":"Analysis"},"priority":40,"severity":"elevated","tags":["Vulnerability"],"cves":[]},{"id":"17c2a975039e","title":"Anthropic AI agent faked identities, phished real developers in UK government hacking test","link":"https://therecord.media/anthropic-ai-hacking-uk","summary":"An artificial intelligence agent built by Anthropic independently planted malicious code in a real software project and sent phishing emails to developers during a U.K. government security evaluation, according to Britain’s AI Security Institute.","publishedAt":"2026-08-05T13:00:00.000Z","source":{"id":"therecord","name":"The Record","site":"https://therecord.media","category":"Geopolitical"},"priority":38,"severity":"elevated","tags":["Phishing"],"cves":[]},{"id":"057678a3ffc8","title":"15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic","link":"https://www.helpnetsecurity.com/2026/08/05/forescout-tp-link-omada-vulnerabilities/","summary":"TP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a guessed one to the Omada cloud service returns the matching device’s MAC address and model. Serials…","publishedAt":"2026-08-05T09:35:00.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":38,"severity":"elevated","tags":["Vulnerability"],"cves":[]},{"id":"5504102610e2","title":"​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)","link":"https://www.microsoft.com/en-us/security/blog/2026/08/05/microsoft-named-a-leader-in-the-kuppingercole-leadership-compass-for-cloud-native-application-protection-platforms-cnapp/","summary":"Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post ​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms…","publishedAt":"2026-08-05T16:30:00.000Z","source":{"id":"msrc","name":"Microsoft Security Blog","site":"https://www.microsoft.com/en-us/security/blog","category":"Vendor Research"},"priority":36,"severity":"elevated","tags":[],"cves":[]},{"id":"c9687e1f0e89","title":"Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk","link":"https://thehackernews.com/2026/08/kali365-weaponizes-microsoft.html","summary":"Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device codes that victims approve on Microsoft's real authentication page. Once access and refresh tokens are…","publishedAt":"2026-08-05T11:43:19.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":36,"severity":"elevated","tags":["Phishing"],"cves":[]},{"id":"e9b8a512dec9","title":"Google’s synchronized passkeys can be stolen in ‘Pass‑ta‑key’ attacks","link":"https://www.malwarebytes.com/blog/news/2026/08/googles-synchronized-passkeys-can-be-stolen-in-pass-ta-key-attacks","summary":"Over time, passkeys are supposed to replace passwords. But what happens when malware steals the master key?","publishedAt":"2026-08-05T11:11:48.000Z","source":{"id":"malwarebytes","name":"Malwarebytes Labs","site":"https://www.malwarebytes.com/blog","category":"Vendor Research"},"priority":36,"severity":"elevated","tags":["Malware"],"cves":[]},{"id":"449324f552c7","title":"AI researchers let models off the leash – then watched as they tried to add malware to a FOSS project","link":"https://www.theregister.com/ai-and-ml/2026/08/05/ai-researchers-let-models-off-the-leash-then-watched-as-they-tried-to-add-malware-to-a-foss-project/5283165","summary":"Models used social engineering and collaborated among themselves to solve a security challenge","publishedAt":"2026-08-05T01:55:54.000Z","source":{"id":"theregister","name":"The Register · Security","site":"https://www.theregister.com/security","category":"News"},"priority":36,"severity":"elevated","tags":["Malware","Phishing"],"cves":[]},{"id":"59beb56d8bb8","title":"Code review used to be the only way to catch these bugs","link":"https://www.helpnetsecurity.com/2026/08/05/code-review-ai-vulnerability-discovery/","summary":"An automated system called NOVA read the source code of 3,915 open-source projects over two months and came back with 14,090 vulnerabilities, each one confirmed through the system’s validation pipeline. Vulnerability researchers at Palo Alto Networks’ Unit 42…","publishedAt":"2026-08-05T11:30:19.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":35,"severity":"informational","tags":["Vulnerability"],"cves":[]},{"id":"9f654a6905d5","title":"Smoke#Screen RMM Takeover Gambit Exposes Threat Actor Playbook","link":"https://www.darkreading.com/cyberattacks-data-breaches/latest-rmm-fueled-phishing-attack-exposes-threat-actor-playbook","summary":"The attacks use diverse social engineering lures and rotating payloads to deliver ScreenConnect for persistent remote access to compromised networks.","publishedAt":"2026-08-04T18:37:35.000Z","source":{"id":"darkreading","name":"Dark Reading","site":"https://www.darkreading.com","category":"News"},"priority":35,"severity":"informational","tags":["APT","Phishing"],"cves":[]},{"id":"984e0151bb2c","title":"128 Seconds to disruption: Microsoft Defender stops ransomware at QNET","link":"https://www.microsoft.com/en-us/security/blog/2026/08/04/129-seconds-disruption-microsoft-defender-stops-ransomware-qnet/","summary":"Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread. The post 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET appeared first on…","publishedAt":"2026-08-04T17:54:04.000Z","source":{"id":"msrc","name":"Microsoft Security Blog","site":"https://www.microsoft.com/en-us/security/blog","category":"Vendor Research"},"priority":34,"severity":"informational","tags":["Ransomware"],"cves":[]},{"id":"31bfabb3c496","title":"Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt","link":"https://thehackernews.com/2026/08/poison-claude-sells-discounted-claude.html","summary":"Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms. One such service, Poison Claude, claims to offer…","publishedAt":"2026-08-05T15:36:03.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":32,"severity":"informational","tags":[],"cves":[]},{"id":"5f687d839cd0","title":"Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports","link":"https://thehackernews.com/2026/08/paperclip-ai-flaws-let-attackers-run.html","summary":"Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an open-source control plane for teams of artificial intelligence (AI) agents, and both paths rely on importing a malicious agent…","publishedAt":"2026-08-05T15:14:05.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":32,"severity":"informational","tags":[],"cves":[]},{"id":"d26daa369e66","title":"Cyberattacks on water systems expand to 12 states as South Dakota, Georgia announce incidents","link":"https://therecord.media/iran-cyberattacks-water-treatment","summary":"Water utilities in at least 12 states have reported cyberattacks on their operational technology, as the scope of a campaign allegedly linked to Iranian hackers continues to grow.","publishedAt":"2026-08-05T14:00:00.000Z","source":{"id":"therecord","name":"The Record","site":"https://therecord.media","category":"Geopolitical"},"priority":32,"severity":"informational","tags":[],"cves":[]},{"id":"fede098150b1","title":"Fake Open VSX Extensions Harvest Private Repo and CI Data","link":"https://www.infosecurity-magazine.com/news/open-vsx-evil-twin-extensions-git/","summary":"77 counterfeit Open VSX extensions beaconed to one domain, 19 harvesting git and CI identity","publishedAt":"2026-08-05T15:30:00.000Z","source":{"id":"infosecurity","name":"Infosecurity Magazine","site":"https://www.infosecurity-magazine.com","category":"News"},"priority":31,"severity":"informational","tags":[],"cves":[]},{"id":"2ae469069381","title":"Black Hat USA 2026 – Summary of Vendor Announcements (Part 3)","link":"https://www.securityweek.com/black-hat-usa-2026-summary-of-vendor-announcements-part-3/","summary":"Many companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas. The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 3) appeared first on SecurityWeek.","publishedAt":"2026-08-05T14:36:29.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":31,"severity":"informational","tags":[],"cves":[]},{"id":"ffcae7f5ccb2","title":"Top product launches at Black Hat USA 2026","link":"https://www.helpnetsecurity.com/2026/08/05/black-hat-usa-2026-product-launches/","summary":"Black Hat USA 2026 is underway in Las Vegas, and vendors are using the moment to unveil what they hope will define the next year of defense. Here are the announcements drawing the most attention on the ground, and why they matter for teams weighing new…","publishedAt":"2026-08-05T15:00:25.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":30,"severity":"informational","tags":[],"cves":[]},{"id":"1fa646bd2319","title":"Stellar Cyber’s Auto-Triage AI matches human analysts 99.7% of the time","link":"https://www.helpnetsecurity.com/2026/08/05/stellar-cyber-agentic-auto-triage-study/","summary":"Stellar Cyber, the full-cycle AI-native security operations platform company, today released results from an independent study of 124 days of customer trials of its Agentic Auto Triage capability. The independent study based on customer trials evaluated…","publishedAt":"2026-08-05T14:30:19.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":30,"severity":"informational","tags":[],"cves":[]},{"id":"760ccf61f3a4","title":"Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain","link":"https://thehackernews.com/2026/08/trojanized-npm-packages-decode-c2-ip.html","summary":"Cybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) technique that conceals the C2 server IP address inside a made-up destination address of a completely empty Ethereum transfer. The new dead drop…","publishedAt":"2026-08-05T13:41:27.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":30,"severity":"informational","tags":[],"cves":[]},{"id":"2a2d6018d24e","title":"London cops handed victim's new address and number to her stalker, watchdog says","link":"https://www.theregister.com/security/2026/08/05/london-cops-handed-victims-new-address-and-number-to-her-stalker-watchdog-says/5283382","summary":"Met ordered to improve safeguards after two preventable data breaches","publishedAt":"2026-08-05T13:30:00.000Z","source":{"id":"theregister","name":"The Register · Security","site":"https://www.theregister.com/security","category":"News"},"priority":29,"severity":"informational","tags":[],"cves":[]},{"id":"963fb072ad2d","title":"Tenable broadens AI visibility across major LLMs and AI tools","link":"https://www.helpnetsecurity.com/2026/08/05/tenable-broadens-ai-visibility-across-major-llms-and-ai-tools/","summary":"Tenable has announced enhanced AI security capabilities within the Tenable One Exposure Management Platform. Tenable One AI Exposure now delivers expanded platform coverage with support for Google Gemini, extending its coverage across major LLMs: Google…","publishedAt":"2026-08-05T13:16:39.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":29,"severity":"informational","tags":[],"cves":[]},{"id":"243a9f6446e5","title":"The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict","link":"https://www.securityweek.com/the-fourth-battlefield-the-growing-role-of-cyber-operations-in-global-conflict/","summary":"CrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield. The post The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict appeared…","publishedAt":"2026-08-05T13:00:08.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":29,"severity":"informational","tags":[],"cves":[]},{"id":"f9ed8afa17ec","title":"Open-source software’s archenemy TeamPCP goes back further than anyone thought","link":"https://cyberscoop.com/teampcp-long-active-history-2020-oligo-security/","summary":"Oligo Security uncovered evidence of a long operational history, including multiple previous attacks it traced to the same attacker infrastructure and tools. The post Open-source software’s archenemy TeamPCP goes back further than anyone thought appeared…","publishedAt":"2026-08-05T13:00:00.000Z","source":{"id":"cyberscoop","name":"CyberScoop","site":"https://cyberscoop.com","category":"Geopolitical"},"priority":29,"severity":"informational","tags":[],"cves":[]},{"id":"c9fdbcf9913b","title":"Lumu launches live threat intelligence platform for real-time cyber defence","link":"https://www.helpnetsecurity.com/2026/08/05/lumu-launches-live-threat-intelligence-platform-for-real-time-cyber-defence/","summary":"Lumu has announced the release of Lumu Threat Observatory as part of Maltiverse, its threat intelligence solution. Lumu Threat Observatory is Maltiverse’s live, personalized threat-intelligence experience, providing organizations with a complete, live view of…","publishedAt":"2026-08-05T12:44:42.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":28,"severity":"informational","tags":[],"cves":[]},{"id":"645726784cb3","title":"INTERPOL flags AI as the new engine of African cybercrime","link":"https://www.helpnetsecurity.com/2026/08/05/interpol-africa-cybercrime-trends/","summary":"Africa’s growing digital economy is exposing governments, businesses and internet users to a rising wave of cybercrime. The continent recorded more than 1.1 billion mobile subscriptions and over $1.1 trillion in digital transactions in 2025, while more than…","publishedAt":"2026-08-05T12:24:24.000Z","source":{"id":"helpnetsecurity","name":"Help Net Security","site":"https://www.helpnetsecurity.com","category":"News"},"priority":28,"severity":"informational","tags":[],"cves":[]},{"id":"decfc0f6d367","title":"Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data","link":"https://www.securityweek.com/cybersecurity-alliance-drafts-safe-guidelines-for-sharing-ai-incident-data/","summary":"The guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations. The post Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data appeared first on SecurityWeek.","publishedAt":"2026-08-05T11:11:29.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":27,"severity":"informational","tags":[],"cves":[]},{"id":"aea693a71cf4","title":"AI Agents Targeted Real People and Projects During Cybersecurity Tests","link":"https://www.securityweek.com/ai-security-institute-reports-anthropic-and-openai-models-going-rogue-against-organizations/","summary":"AI Security Institute reports Anthropic and OpenAI models going rogue against real people, organizations, and open source projects. The post AI Agents Targeted Real People and Projects During Cybersecurity Tests appeared first on SecurityWeek.","publishedAt":"2026-08-05T10:33:41.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":27,"severity":"informational","tags":[],"cves":[]},{"id":"aeca02cb50c5","title":"Phishing service spoofs RingCentral to steal Microsoft 365 accounts","link":"https://www.bleepingcomputer.com/news/security/phishing-service-spoofs-ringcentral-to-steal-microsoft-365-accounts/","summary":"The Greatness phishing-as-a-service (PhaaS) platform has expanded from credential phishing to adversary-in-the-middle attacks and device-code phishing targeting Microsoft 365 accounts. [...]","publishedAt":"2026-08-04T21:45:36.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":27,"severity":"informational","tags":["Phishing"],"cves":[]},{"id":"4080fafde5d3","title":"UK charities count the cost of Beacon CRM cyberattack","link":"https://www.theregister.com/security/2026/08/05/uk-charities-count-the-cost-of-beacon-crm-cyberattack/5283305","summary":"Database backups likely stolen, potentially exposing donor, supporter, and service user details","publishedAt":"2026-08-05T11:04:52.000Z","source":{"id":"theregister","name":"The Register · Security","site":"https://www.theregister.com/security","category":"News"},"priority":26,"severity":"informational","tags":[],"cves":[]},{"id":"be3abb992d85","title":"Prompt Injection Remains Biggest LLM Risk, Despite Limited Incidents","link":"https://www.infosecurity-magazine.com/news/prompt-injection-llm-risk/","summary":"Prompt injection remains the most dangerous security threat to LLMs, according to OWASP’s latest Top 10 LLM Applications list","publishedAt":"2026-08-05T11:00:00.000Z","source":{"id":"infosecurity","name":"Infosecurity Magazine","site":"https://www.infosecurity-magazine.com","category":"News"},"priority":26,"severity":"informational","tags":[],"cves":[]},{"id":"465fecfc44cc","title":"ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs","link":"https://www.infosecurity-magazine.com/news/chaindrop-worm-400-npm-two-billion/","summary":"A new npm worm has compromised packages with over two billion monthly installs","publishedAt":"2026-08-05T10:00:00.000Z","source":{"id":"infosecurity","name":"Infosecurity Magazine","site":"https://www.infosecurity-magazine.com","category":"News"},"priority":25,"severity":"informational","tags":[],"cves":[]},{"id":"e0afa93f491d","title":"Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data","link":"https://thehackernews.com/2026/08/open-vsx-removes-77-malicious-evil-twin.html","summary":"A cluster of 77 extensions on the Open VSX marketplace has been found to impersonate legitimate developer tools while transmitting information about the systems and development environments on which they were installed. The \"evil twin\" extensions were…","publishedAt":"2026-08-05T09:23:03.000Z","source":{"id":"thehackernews","name":"The Hacker News","site":"https://thehackernews.com","category":"News"},"priority":25,"severity":"informational","tags":[],"cves":[]},{"id":"fb051093d855","title":"Junk Cleaner clears the clutter from your Android","link":"https://www.malwarebytes.com/blog/product/2026/08/junk-cleaner-clears-the-clutter-from-your-android","summary":"The easiest way to reclaim storage on your phone. Free up space without hunting through folders or risking your important files.","publishedAt":"2026-08-05T09:07:19.000Z","source":{"id":"malwarebytes","name":"Malwarebytes Labs","site":"https://www.malwarebytes.com/blog","category":"Vendor Research"},"priority":25,"severity":"informational","tags":[],"cves":[]},{"id":"752b1197de1d","title":"AI is getting better at election facts, but voters shouldn’t rely on it","link":"https://cyberscoop.com/ai-chatbots-2026-midterm-elections/","summary":"AI chatbots are avoiding some of the obvious errors that plagued earlier models, but they still fall short giving voters the full picture compared to state and local sources. The post AI is getting better at election facts, but voters shouldn’t rely on it…","publishedAt":"2026-08-05T09:00:00.000Z","source":{"id":"cyberscoop","name":"CyberScoop","site":"https://cyberscoop.com","category":"Geopolitical"},"priority":25,"severity":"informational","tags":[],"cves":[]},{"id":"2cdeb2a8b7bf","title":"Salesforce previews plans to deliver newly authorized ‘AI agents’ across DOD","link":"https://defensescoop.com/2026/08/05/salesforce-plans-deliver-newly-authorized-ai-agents-across-dod/","summary":"The company's signature agentic AI product offering is officially approved compliant to operate at DOD Impact Level 5. The post Salesforce previews plans to deliver newly authorized ‘AI agents’ across DOD appeared first on DefenseScoop.","publishedAt":"2026-08-05T09:00:00.000Z","source":{"id":"defensescoop","name":"DefenseScoop","site":"https://defensescoop.com","category":"Geopolitical"},"priority":24,"severity":"informational","tags":[],"cves":[]},{"id":"94546be4d513","title":"Frontier Models Engage in Unsanctioned Behavior During Testing","link":"https://www.infosecurity-magazine.com/news/frontier-models-unsanctioned/","summary":"Anthropic and OpenAI models attacked “real people and organizations” during AI Security Institute tests","publishedAt":"2026-08-05T08:45:00.000Z","source":{"id":"infosecurity","name":"Infosecurity Magazine","site":"https://www.infosecurity-magazine.com","category":"News"},"priority":24,"severity":"informational","tags":[],"cves":[]},{"id":"6a0611e5b745","title":"Angola's Largest Telco Breached Hours Before IPO","link":"https://www.darkreading.com/cyberattacks-data-breaches/angolas-largest-telco-breached-hours-before-ipo","summary":"Unitel, Angola's dominant mobile operator, continues to recover from a cyberattack that caused outages the day of the government-owned telco's public offering.","publishedAt":"2026-08-05T08:00:00.000Z","source":{"id":"darkreading","name":"Dark Reading","site":"https://www.darkreading.com","category":"News"},"priority":24,"severity":"informational","tags":[],"cves":[]},{"id":"32cad76b0122","title":"OpenAI, Anthropic AI agents targeted real people and systems in cyber tests","link":"https://www.bleepingcomputer.com/news/security/openai-anthropic-ai-agents-targeted-real-people-and-systems-in-cyber-tests/","summary":"OpenAI and Anthropic have confirmed that their AI models were involved in separate, newly disclosed third-party cybersecurity testing incidents that resulted in a real website being breached and social engineering attacks against people outside the intended…","publishedAt":"2026-08-04T23:39:59.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":24,"severity":"informational","tags":["Phishing"],"cves":[]},{"id":"b747b06af86d","title":"Water Sector Cyberattacks Reportedly Hit at Least 12 States","link":"https://www.securityweek.com/water-sector-cyberattacks-reportedly-hit-at-least-12-states/","summary":"Georgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption. The post Water Sector Cyberattacks Reportedly Hit at Least 12 States appeared first on SecurityWeek.","publishedAt":"2026-08-05T07:24:52.000Z","source":{"id":"securityweek","name":"SecurityWeek","site":"https://www.securityweek.com","category":"News"},"priority":23,"severity":"informational","tags":[],"cves":[]},{"id":"14317ff15587","title":"Apple battles it out again with the UK over encrypted iCloud access","link":"https://www.malwarebytes.com/blog/news/2026/08/apple-battles-it-out-again-with-uk-over-encrypted-icloud-access","summary":"Apple is fighting another attempt by the UK's Home Office to get a backdoor providing access to encrypted iCloud data.","publishedAt":"2026-08-04T20:30:13.000Z","source":{"id":"malwarebytes","name":"Malwarebytes Labs","site":"https://www.malwarebytes.com/blog","category":"Vendor Research"},"priority":23,"severity":"informational","tags":["Backdoor"],"cves":[]},{"id":"9d51e803507d","title":"SMOKE#SCREEN Campaign Abuses ScreenConnect to Give Attackers Remote Control Access","link":"https://securityaffairs.com/196637/uncategorized/smokescreen-campaign-abuses-screenconnect-to-give-attackers-remote-control-access.html","summary":"SMOKE#SCREEN uses fake Zoom updates to install ScreenConnect RMM, giving attackers persistent remote access while bypassing defenses. Securonix Threat Research has been tracking an active multi-wave campaign they’ve named SMOKE#SCREEN, in which unknown…","publishedAt":"2026-08-05T05:52:28.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":20,"severity":"informational","tags":[],"cves":[]},{"id":"b1350c49bec3","title":"ISC Stormcast For Wednesday, August 5th, 2026 https://isc.sans.edu/podcastdetail/10038, (Wed, Aug 5th)","link":"https://isc.sans.edu/diary/rss/33216","summary":"(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.","publishedAt":"2026-08-05T02:00:02.000Z","source":{"id":"isc-sans","name":"SANS Internet Storm Center","site":"https://isc.sans.edu","category":"Research / CERT"},"priority":20,"severity":"informational","tags":[],"cves":[]},{"id":"84d7b818f538","title":"New XCSSET variant targets macOS devs via compromised Xcode projects","link":"https://www.bleepingcomputer.com/news/security/new-xcsset-variant-targets-macos-devs-via-compromised-xcode-projects/","summary":"A new version of the XCSSET malware is targeting thousands of macOS users through compromised Xcode projects and GitHub repositories. [...]","publishedAt":"2026-08-04T19:03:09.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":20,"severity":"informational","tags":["Malware"],"cves":[]},{"id":"827ae9f53d02","title":"National cyber director lays out White House plans to secure AI without writing new rules","link":"https://cyberscoop.com/trump-ai-executive-order-open-source-strategy-sean-cairncross/","summary":"The Trump administration executive order on artificial intelligence tried to strike the balance between responsible use, security and mutual benefit, all with an eye toward not making it regulatory in nature, National Cyber Director Sean Cairncross said…","publishedAt":"2026-08-05T03:17:09.000Z","source":{"id":"cyberscoop","name":"CyberScoop","site":"https://cyberscoop.com","category":"Geopolitical"},"priority":19,"severity":"informational","tags":[],"cves":[]},{"id":"97a5b5e0f974","title":"AISI, OpenAI report more ‘unsanctioned’ model hacks","link":"https://cyberscoop.com/aisi-openai-report-unsanctioned-ai-model-hacks/","summary":"Following similar reports by OpenAI and Anthropic, the UK’s top AI testing lab and a private cybersecurity tester say their models exploited parts of the open internet. The post AISI, OpenAI report more ‘unsanctioned’ model hacks appeared first on CyberScoop.","publishedAt":"2026-08-04T22:46:25.000Z","source":{"id":"cyberscoop","name":"CyberScoop","site":"https://cyberscoop.com","category":"Geopolitical"},"priority":14,"severity":"informational","tags":[],"cves":[]},{"id":"73a78c5d9c1f","title":"Space Force awards $615M in deals for second batch of aircraft-tracking satellites","link":"https://defensescoop.com/2026/08/04/space-force-awards-contracts-aircraft-tracking-satellites/","summary":"The new contracts build off the $4.16 billion award given to SpaceX in May, which tasked the company to develop an initial satellite constellation for the SB-AMTI program. The post Space Force awards $615M in deals for second batch of aircraft-tracking…","publishedAt":"2026-08-04T22:13:21.000Z","source":{"id":"defensescoop","name":"DefenseScoop","site":"https://defensescoop.com","category":"Geopolitical"},"priority":12,"severity":"informational","tags":[],"cves":[]},{"id":"77314ba4d503","title":"OpenAI: Cambodian scam centers used ChatGPT to lure Indian nationals, conduct investment fraud","link":"https://therecord.media/openai-chatgpt-cambodia-scam-centers-disruption","summary":"A tip from WhatsApp led OpenAI to ban multiple accounts associated with investment scams and human trafficking operations based in Cambodian scam centers.","publishedAt":"2026-08-04T20:15:00.000Z","source":{"id":"therecord","name":"The Record","site":"https://therecord.media","category":"Geopolitical"},"priority":12,"severity":"informational","tags":[],"cves":[]},{"id":"f32996ec2e75","title":"Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps","link":"https://www.microsoft.com/en-us/security/blog/2026/08/04/advance-zero-trust-for-ai-new-tools-and-guidance-to-secure-ai-agents-and-devsecops/","summary":"Microsoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and guidance. The post Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps appeared first on Microsoft…","publishedAt":"2026-08-04T18:30:00.000Z","source":{"id":"msrc","name":"Microsoft Security Blog","site":"https://www.microsoft.com/en-us/security/blog","category":"Vendor Research"},"priority":12,"severity":"informational","tags":[],"cves":[]},{"id":"2d351b1e6d91","title":"77 Open VSX extensions found harvesting developer info","link":"https://www.bleepingcomputer.com/news/security/77-open-vsx-extensions-found-harvesting-developer-info/","summary":"77 extensions on the Open VSX marketplace impersonated legitimate developer tools while transmitting information about the systems and development environments where they were installed. [...]","publishedAt":"2026-08-04T18:50:55.000Z","source":{"id":"bleepingcomputer","name":"BleepingComputer","site":"https://www.bleepingcomputer.com","category":"News"},"priority":11,"severity":"informational","tags":[],"cves":[]},{"id":"e3c2e83e525b","title":"SharePoint Flaws Used to Hack Switzerland’s Federal IT Agency","link":"https://securityaffairs.com/196625/hacking/sharepoint-flaws-used-to-hack-switzerlands-federal-it-agency.html","summary":"Swiss Federal IT Agency FOITT says attackers exploited SharePoint flaws to compromise about 200 accounts. Servers are being rebuilt as investigations continue. Switzerland’s Federal Office for Information Technology and Communications, known as BIT or FOITT,…","publishedAt":"2026-08-04T20:12:47.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":10,"severity":"informational","tags":[],"cves":[]},{"id":"c65adce70b1f","title":"Iran Cyberattacks Against Minnesota Water Systems","link":"https://www.schneier.com/blog/archives/2026/08/iran-cyberattacks-against-minnesota-water-systems.html","summary":"Attribution is preliminary, and so far it seems no real damage. And it seems like this is a campaign that has targeted at least seven states. And, because this is where the US is right now, Trump doesn’t believe it’s Iran and that Minnesota…I guess…hacked…","publishedAt":"2026-08-04T19:00:53.000Z","source":{"id":"schneier","name":"Schneier on Security","site":"https://www.schneier.com","category":"Analysis"},"priority":10,"severity":"informational","tags":[],"cves":[]},{"id":"b4cc4f919374","title":"Army seeks next-gen missile that could shoot down small drones for less than $150K a pop","link":"https://defensescoop.com/2026/08/04/army-new-missile-shoot-down-drones/","summary":"The service issued an RFI on Aug. 4 to support the initiative. The post Army seeks next-gen missile that could shoot down small drones for less than $150K a pop appeared first on DefenseScoop.","publishedAt":"2026-08-04T18:07:43.000Z","source":{"id":"defensescoop","name":"DefenseScoop","site":"https://defensescoop.com","category":"Geopolitical"},"priority":8,"severity":"informational","tags":[],"cves":[]}],"brief":{"threatLevel":{"level":"Severe","tone":"severe","score":100,"blurb":"6 critical and 8 high-severity threats active now."},"trendingCves":[{"id":"CVE-2026-64531","count":1}],"trendingTags":[{"tag":"Malware","count":10},{"tag":"Phishing","count":8},{"tag":"Breach","count":5},{"tag":"Supply Chain","count":5},{"tag":"RCE","count":4},{"tag":"Unauthenticated","count":3},{"tag":"Critical","count":3}],"geopolitical":[{"id":"8a7f837021eb","title":"Brown Health Medical Group-MA Data Breach Exposes Information of 311,000 Individuals","link":"https://securityaffairs.com/196681/uncategorized/brown-health-medical-group-ma-data-breach-exposes-information-of-311000-individuals.html","summary":"Brown Health Medical Group-MA breach exposed personal, medical, and financial data of over 311,000 individuals after hackers accessed its servers. Brown Health Medical Group-MA data breach exposed personal, medical, and financial data of over 311,000…","publishedAt":"2026-08-05T16:27:17.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":52,"severity":"high","tags":["Breach"],"cves":[]},{"id":"cdc527a84c98","title":"Dutch retailer De Bijenkorf warns customer data may be exposed after cyber incident","link":"https://therecord.media/de-bijenkorf-luxury-retailer-third-party-cyber-incident","summary":"Amsterdam-based luxury goods chain De Bijenkorf is the latest retailer to announce a cyber incident involving a third-party logistics provider.","publishedAt":"2026-08-05T15:36:00.000Z","source":{"id":"therecord","name":"The Record","site":"https://therecord.media","category":"Geopolitical"},"priority":54,"severity":"high","tags":["Breach"],"cves":[]},{"id":"ce64270c2259","title":"U.S. CISA adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog","link":"https://securityaffairs.com/196667/hacking/u-s-cisa-adds-langflow-apache-tomcat-and-n-able-n-central-flaws-to-its-known-exploited-vulnerabilities-catalog.html","summary":"U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following…","publishedAt":"2026-08-05T15:25:18.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":45,"severity":"elevated","tags":["Vulnerability"],"cves":[]},{"id":"a8da81cc43b3","title":"OVSwrap: 13-Year-Old Linux Kernel Flaw Lets Local Users Become Root","link":"https://securityaffairs.com/196657/hacking/ovswrap-13-year-old-linux-kernel-flaw-lets-local-users-become-root.html","summary":"OVSwrap is a 13-year-old Linux kernel flaw that lets local users gain root privileges on most distributions using Open vSwitch. Security researcher Asim Manizada disclosed OVSwrap (CVE-2026-64531, CVSS score of 7.8), a local privilege escalation vulnerability…","publishedAt":"2026-08-05T14:24:08.000Z","source":{"id":"securityaffairs","name":"Security Affairs","site":"https://securityaffairs.com","category":"Geopolitical"},"priority":71,"severity":"critical","tags":["Priv-Esc","Vulnerability"],"cves":["CVE-2026-64531"]},{"id":"d26daa369e66","title":"Cyberattacks on water systems expand to 12 states as South Dakota, Georgia announce incidents","link":"https://therecord.media/iran-cyberattacks-water-treatment","summary":"Water utilities in at least 12 states have reported cyberattacks on their operational technology, as the scope of a campaign allegedly linked to Iranian hackers continues to grow.","publishedAt":"2026-08-05T14:00:00.000Z","source":{"id":"therecord","name":"The Record","site":"https://therecord.media","category":"Geopolitical"},"priority":32,"severity":"informational","tags":[],"cves":[]}]},"stats":{"totalItems":77,"criticalCount":6,"highCount":8,"sourcesOnline":32,"sourcesTotal":32,"windowHours":24,"generatedAt":"2026-08-05T17:36:26.503Z","failedSources":[]}}